CWE-354

Medium likelihood

Improper Validation of Integrity Check Value

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The product does not validate or incorrectly validates the integrity check values or "checksums" of a message. This may prevent it from detecting if the data has been modified or corrupted in transmission.

157 vulnerabilities with CWE-354
CVE-2025-3479 MEDIUM
Forminator Forms - Custom Form Builder <1.42.0 - RCE
CVSS 5.3
CVE-2025-3247 MEDIUM
Contact Form 7 <6.0.5 - Order Replay
CVSS 5.3
CVE-2025-24148 MEDIUM
macOS <13.7.5-15.4-14.7.5 - Code Injection
CVSS 5.5
CVE-2025-25183 LOW
vLLM - Info Disclosure
CVSS 2.6
CVE-2024-7402 HIGH
Netskope Client - Privilege Escalation
CVE-2024-46992 HIGH
Electron <30.0.5-31.0.0-beta.1 - ASAR Integrity Bypass
CVSS 7.8
CVE-2024-47573 MEDIUM
FortiNDR <7.4.2-7.0.6 - Privilege Escalation
CVSS 6.5
CVE-2024-47935 MEDIUM
TXOne Networks StellarProtect <3.2 - Privilege Escalation
CVSS 6.7
CVE-2024-56169 MEDIUM
Fort <2.0.0 - Info Disclosure
CVSS 5.3
CVE-2024-51141 HIGH
TOTOLINK Bluetooth Wireless Adapter A600UB - RCE
CVSS 7.8
CVE-2024-52550 HIGH
Jenkins Pipeline: Groovy Plugin <3990.vd281dd77a_388 - Improper Input Validation
CVSS 8.0
CVE-2024-49406 MEDIUM
Blockchain Keystore <1.3.16 - Privilege Escalation
CVSS 6.7
CVE-2024-47255 MEDIUM
2N Access Commander <3.1.1.2 - Privilege Escalation
CVSS 4.7
CVE-2024-49875 MEDIUM
Linux Kernel - Info Disclosure
CVSS 5.5
CVE-2024-48930 HIGH
secp256k1-node <5.0.1-3.8.1 - Info Disclosure
CVE-2024-47089 MEDIUM
Apex Softcell LD Geo - Privilege Escalation
CVSS 6.5
CVE-2024-45789 MEDIUM
Reedos Aim-star - Denial of Service
CVSS 4.3
CVE-2024-41909 MEDIUM
Apache MINA SSHD <2.12.0 - DoS
CVSS 5.9
CVE-2024-3596 CRITICAL
RADIUS Protocol - Forgery
CVSS 9.0
CVE-2024-31958 MEDIUM
Samsung Mobile Processor - Memory Corruption
CVSS 6.8
CVE-2024-34714 HIGH
Hoppscotch Browser Extension - RCE
CVSS 7.6
CVE-2024-3727 HIGH
Containers Image < 5.30.1 - Path Traversal
CVSS 8.3
CVE-2024-23462 LOW
Zscaler Client Connector <3.4 - DoS
CVSS 3.3
CVE-2024-23461 MEDIUM
Zscaler Client Connector <3.4 - RCE
CVSS 4.2
CVE-2024-32883 HIGH
MCUboot - Info Disclosure
CVSS 7.7
Details
Vulnerabilities 157
Exploit Likelihood Medium